77/100 SECURITY SCORE

Certificate Information

Subject
CN=happus.co
Issuer
C=US, O=Google Trust Services, CN=WR3
Valid From
November 18, 2025
Valid Until
February 16, 2026 86 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
06:71:8C:2F:C7:F1:A3:F6:09:D6:D7:A2:E9:C1:53:4A:D5:DD:03:C6:EC:0E:FD:D9:88:D5:1B:5E:A6:92:41:D6
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31556926
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
www.thebeautypool.com

Other domains in certificate

link.addtocarrot.com
ascott.airbrain.sg
arguselevator.us
www.art-monistein.de
bahaitt.org
www.balitournyoman.com
bellaviinternational.com
birapi.com
bloomkidzpreschool.com
bustedmetal.com
www.carbodium.com
www.casabusca.com.br
centerofinfectiousdisease.com
ootlaw.co.ke
plataforma.colsan.cl
www.anup-pokharel.com.np
constructoramontecristo.cl
coredev.ma
daggerfail.com
davidandkyla.com
dollface.net
udt.edu.mx
web.emergencyassist.net
www.engapp.com.br
ermplanet.com
exnecth.com
www.faltantes.farmaciasgaleno.cl
farsiai.com
maker.ficklefate.com
flaptalk.jp
floxt.com
fordlady.us
fundacionsmapanama.org
gasteckorea.com
www.gbuilder.link
learning.gonzaloronzon.com
www.gopherforchrome.app
graniowki.pl
gurayyilmaz.com
admin.h-geo.com www.h-geo.com
happus.co
recipedb.heidenblut.eu
storybook.honorable.design
i-t-s.me
link.ifit.io
immediateapps.co.uk
waffle.ilmsg.in.th
app.servicity.in.ua
irl-url.com
itzelyalejandro.com
auth.khotouba.com
ktown.io
www.labozilla.com.br
lerstudios.com
www.lucid-mind.eu
mosaic.mdc.com.br
www.menuday.com
candidate.miahire.com
mrexplorer.blog
upgrade.myvaillant.com
www.naiadelinhasunicas.com.br
neigeventseisme.fr
www.noccippuca.com
north.nu
www.noy.tv
webp.orkun.org
trial.parkalot.io
pctoolsindia.com
plan.poker
backoffice.phyathai3-prestige.plaping-dc.com
appointment.ng.plasito.com
app.rara.co
jobimag.recursyve.dev
rejuvuster.kr
play.roleplaylab.com
auth.satasol.com
sintese.tech
www.sitsalab.com
yknf7x9m9hjxv7uuumub.smartimob.io
snytro.com
sso.splixcube.com
stagingbooking.sssdivyasmrti.org
stomable.com
swadata.in
i.tazamilk.com
techlabs.solutions
www.tekpool.dev
www.thesimpleclub.at
marcopolo.thetislive.com
thijs.digital
pecunia-live.tyrcord.com
www.unmlobosportscamps.com
staging.useadspilot.com
vaultactivation.com
testing.covid-research.wedevelop.me
www.wegohomes.co.uk
write-more.com
xcape.in